Tae Jun Kim created ZEPPELIN-1602:
-------------------------------------
Summary: REST API should return proper error status code & message
when user is an anonymous
Key: ZEPPELIN-1602
URL: https://issues.apache.org/jira/browse/ZEPPELIN-1602
Project: Zeppelin
Issue Type: Bug
Components: zeppelin-server
Reporter: Tae Jun Kim
This issue is related to
[ZEPPELIN-1586|https://github.com/apache/zeppelin/pull/1567]
Currently, when a user does not have permission, REST API returns proper error
status code *403* with some message:
{code}
{"status":"FORBIDDEN","message":"Insufficient privileges you cannot get this
note"}
{code}
However, when a user is anonymous, it returns *405* error status code without
any message. The error status code should be *403*, because it's {{forbidden}},
not {{method not allowed}}. And also the server should return some error
message. If not, users can be confused.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)